SecPod Labs
Security Research
In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

CVE Research
Google Fixes Chrome’s Sixth Zero-day Vulnerability in 2023
In response to ongoing attacks exploiting a security vulnerability, Google released a security patch on 28th November, effectively addressing the sixth zero-day flaw in the Chrome browser this year. The company has officially acknowledged the existence of an exploit for the identified security flaw,...

CVE Research
Proactive Vulnerability Mitigation: Staying Ahead of Cyber Threats
Companies are taking proactive steps to address vulnerabilities before their security team find and resolve them. While this approach is necessary and effective to a certain extent, it carries the risk of delayed responses, leaving systems exposed to potential threats. According to Check Point Rese...

CVE Research
VMware Products Under Active Attack Through a Critical Zero-Day Vulnerability
VMware has released security updates to fix a critical vulnerability that is being exploited in the wild. According to the advisory, CVE-2020-4006 is a command injection bug, and attackers can take control of the system once exploited. This fix supersedes an initial workaround released by VMware in ...

CVE Research
Zoom Zero-Day Critical Vulnerability Allows RCE
A critical zero-day vulnerability has been found in Zoom – A video conferencing software, for Windows 7 or below. The vulnerability allows an attacker to execute remote code on the victim’s system without triggering any security warning. To successfully exploit this vulnerability, the attacker trick...
SCAP Feed Release – Part 2 : 13-Apr-2017
SCAP Feed Release : 15-Sep-2018


